Stories
Slash Boxes
Comments

SoylentNews is people

Submission Preview

Link to Story

Sinking Container Ships by Hacking Load Plan Software

Accepted submission by Phoenix666 at 2017-11-21 15:04:00
Security

Now that's cyber-terrorism [pentestpartners.com]:

A Suezmax container ship can hold over 10,000 TEUs or “Twenty Foot Equivalent Units”. Most containers carried are double this length – FEUs or “Forty Foot Equivalent Units” – but that still means in the region of 5,000 containers.

Only around one third of that cargo is on-deck though – most is hidden in the holds, under massive hatch covers. To get a container out from the bottom of the hold could involve removing 50 containers from that hatch cover, removing the hatch cover, then taking a further 8 containers to access the bottom of a stack.

Screw up the load plan and you create chaos. What if the load plan, which is just a CSV list or similar, is hacked and modified? No-one knows what container is where. instead of taking 24-48 hours to load and unload, it could take weeks to manually re-inventory the ship. Time is money for a ship. Lots of money. Blocking a port for a period whilst the mess is resolved incurs enormous costs and could even jeopardise supplies to an entire country.

Seems like more bang-for-the-buck than an IED [Improvised Explosive Device].


Original Submission